Australian Government Leaks Personal Data

The Australian Department of Home Affairs has mistakenly leaked personal data from over 50 small businesses that were participants in a  cyber security survey.

And the names, business names, phone numbers and emails of the participants in the survey were erroneously published on the parliament website in response to a question about a government cyber security report.

The report is part of a wider initiative that was launched in the wake of last year’s Optus and Medibank cyber attacks, two high-profiled attacks that impacted Australia significantly.

Australia’s Cyber Wardens program, which went on to receive $23.4m in the May budget, is aimed at training small businesses and the workforce to be “cyber smart” and aware of possible cyber threats.

The research report from firm 89 Degrees East was developed as part of the cyber wardens pilot program launched in the wake of last year’s Optus and Medibank cyber attacks.

The program is aimed at training small businesses and the workforce to be “cyber smart” and aware of possible cyber threats.

The Understanding Small Business and Cyber Security report which contained the personal information surveyed over 2,000 business owners and employees, and found 44% had experienced a cyber attack, with 29% saying they had experienced a cyber attack affecting their own personal information.

Those who participated in the survey and indicated they wanted to hear more about the cyber wardens program were included in the information. The information was removed from the parliament website recently.

The cyber wardens program is a Council of Small Business Organisations of Australia initiative delivered by 89 Degrees East that runs as a free online education course for small businesses to train employers and employees to protect their businesses from cyber threats, with the aim to train 50,000 “cyber wardens” over three years.

In June, the prime minister, Anthony Albanese, was questioned by the opposition about the $23m grants being awarded without tender, to COSBOA, which partnered with 89 Degrees East.

The opposition had questioned whether there was a conflict of interest given 89 Degrees East lists the wife of the health minister, Mark Butler, as a senior consultant, when the money was approved by the expenditure review committee Butler sits on.

In parliament at the start of June, Butler said he had made all appropriate declarations to the prime minister as required by the ministerial code, and his wife’s contract had been mentioned, despite her contract having ended in 2021. He said that arrangements were in place to manage any potential conflicts of interest.

The Guardian:     IT Security Guru:     Infosecurity Magazine:     TEISS:     Cyber Security Connect

 

___________________________________________________________________________________________

If you like this website and use the comprehensive 6,500-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

Cyber Security Intelligence: Captured Organised & Accessible

« Banks Hacked With Open-Source Software
British Lord: AI Bots Could Replace Peers »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

ManageEngine

ManageEngine

As the IT management division of Zoho Corporation, ManageEngine prioritizes flexible solutions that work for all businesses, regardless of size or budget.

LockLizard

LockLizard

Locklizard provides PDF DRM software that protects PDF documents from unauthorized access and misuse. Share and sell documents securely - prevent document leakage, sharing and piracy.

DigitalStakeout

DigitalStakeout

DigitalStakeout enables cyber security professionals to reduce cyber risk to their organization with proactive security solutions, providing immediate improvement in security posture and ROI.

ZenGRC

ZenGRC

ZenGRC - the first, easy-to-use, enterprise-grade information security solution for compliance and risk management - offers businesses efficient control tracking, testing, and enforcement.

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

InfoSec World

InfoSec World

InfoSec World conference and expo covers all aspects of information security with a broad agenda of sessions on key security issues.

Adeptis Group

Adeptis Group

Adeptis are experts in cyber security recruitment, providing bespoke staffing solutions to safeguard your organisation against ever-changing cyber threats.

SecureMetric Technology

SecureMetric Technology

SecureMetric is one of SE Asia’s leading players in the field of digital security with a focus on Software Licensing Protection, 2-Factor Authentication, Advanced Identity and Access Management, Publi

OneSpan

OneSpan

OneSpan (formerly Vasco Data Security) is a global leader in digital identity security, transaction security and business productivity.

Herbert Smith Freehills

Herbert Smith Freehills

Herbert Smith Freehills is a leading professional services including data protection and privacy.

Destel

Destel

Destel is a system integrator and provider of IT services focused on Advanced Network & Security Solutions.

CyberWhite

CyberWhite

CyberWhite is a disruptive provider of cyber security and risk mitigation solutions.

Liquid Intelligent Technologies

Liquid Intelligent Technologies

Liquid Intelligent Technologies is a leading communications solutions provider across Africa, providing reliable connectivity, hosting, co-location, and digital services including cyber security.

Predatech

Predatech

A cyber security consultancy offering a range of services, including CREST accredited penetration testing, vulnerability assessments and certifications incl. Cyber Essentials & Cyber Essentials Plus.

Intechtel

Intechtel

Intechtel is a cyber security company, in addition to providing other internet, technology and telephone services.

SAFECode

SAFECode

SAFECode is a global industry forum where business leaders and technical experts come together to exchange insights on creating, improving, and promoting effective software security programs.

SecureAge Technology

SecureAge Technology

We’re a rapidly growing cybersecurity company with an 18-year history of ZERO Data breaches. Our security solutions place security and usability on equal footing. Learn more about our technology.

KryptoKloud

KryptoKloud

KryptoKloud offer a suite of Managed Services including Security Monitoring and Incident Response as well as a full portfolio of Compliance, Governance and Audit solutions.

FourthRev

FourthRev

FourthRev is an education-technology start-up with a mission to solve the skills crisis of the Fourth Industrial Revolution.

Infiot

Infiot

Infiot is a pioneer in enabling secure, reliable access with zero trust security, network optimization, edge-intelligence and AI driven operations for all remote users, devices, sites and cloud.

SecureWeb3

SecureWeb3

SecureWeb3 helps businesses and brands to secure their Web3 presence by offering a full suite of security services including training, consultancy & brand protection solutions.